Menu

#2417 (ok 2.10.1) XSS in browse_foreigners.php

2.10.0.2
fixed
None
1
2013-06-11
2007-04-20
No

As reported by Security Reason.

Discussion

  • Marc Delisle

    Marc Delisle - 2007-04-20

    Logged In: YES
    user_id=210714
    Originator: YES

    Patch:
    Index: browse_foreigners.php
    ===================================================================
    --- browse_foreigners.php (revision 10302)
    +++ browse_foreigners.php (working copy)
    @@ -105,7 +105,7 @@
    var element_name = field + '[]';
    <?php } ?>

    - <?php if (isset($fieldkey)) { ?>
    + <?php if (isset($fieldkey) && is_numeric($fieldkey)) { ?>
    var element_name_alt = field + '[<?php echo $fieldkey; ?>]';
    <?php } else { ?>
    var element_name_alt = field + '[0]';

     
  • Marc Delisle

    Marc Delisle - 2007-04-23
    • priority: 5 --> 1
    • summary: XSS in browse_foreigners.php --> (ok 2.10.1) XSS in browse_foreigners.php
    • status: open --> open-fixed
     
  • Marc Delisle

    Marc Delisle - 2007-04-28
    • status: open-fixed --> closed-fixed
     
  • Michal Čihař

    Michal Čihař - 2013-06-11
    • Status: closed-fixed --> fixed
     
Want the latest updates on software, tech news, and AI?
Get latest updates about software, tech news, and AI from SourceForge directly in your inbox once a month.